Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Senior IT Security Operations Engineer image - Rise Careers
Job details

Senior IT Security Operations Engineer

Enroll Here is on a mission to make healthcare enrollment simple, transparent, and accessible for everyone. We partner with organizations nationwide to deliver streamlined technology and exceptional customer experiences, ensuring members can access the coverage they need with confidence. Our fully remote team thrives on collaboration, innovation, and a shared commitment to improving the enrollment journey for all.

The Senior IT Security Operations Engineer is responsible for strengthening and managing Enroll Here’s security operations function—detecting, investigating, and responding to security incidents, optimizing monitoring and defense mechanisms, and leading proactive threat detection and response initiatives.

This role will serve as a senior individual contributor and trusted technical leader, helping drive the maturity of the Security Operations Center (SOC), automation, metrics, playbooks, and cross-functional collaboration to ensure the confidentiality, integrity, and availability of Enroll Here’s systems and data.

Responsibilities

Operational Security & Incident Response

  • Monitor, detect, analyze, and respond to security events and incidents using SIEM, EDR, IDS/IPS, and network analytics tools.

  • Lead or participate in incident response, root cause analysis, post-incident reviews, and remediation planning.

  • Triage alerts, assess severity, contain threats, and coordinate with IT, networking, and application teams to drive resolution.

  • Continuously improve detection capabilities and tune alerts to enhance accuracy and reduce false positives.

Threat Hunting & Proactive Defense

  • Conduct proactive threat hunting across endpoints, networks, logs, cloud, and identity environments.

  • Integrate threat intelligence feeds into detection logic and analytics.

  • Develop and maintain custom detection rules, scripts, and playbooks to strengthen defenses.

Logging, Monitoring, & Automation

  • Design, maintain, and optimize logging and monitoring architecture, ensuring scalability and performance.

  • Manage security tooling such as SIEM, EDR, UEBA, SOAR, and threat intelligence platforms.

  • Automate detection and response workflows using scripts, APIs, or orchestration tools.

Processes, Playbooks, & Documentation

  • Create and enhance incident response playbooks, standard operating procedures, and runbooks.

  • Establish key metrics, dashboards, and KPIs to measure SOC performance and maturity.

  • Conduct regular tabletop exercises and maintain documentation for audit readiness.

Governance, Risk & Compliance

  • Partner with GRC teams to align security operations with regulatory and contractual obligations (HIPAA, PCI, NIST, etc.).

  • Provide evidence and reporting for audits and risk assessments.

  • Support prioritization of security initiatives through operational risk insights.

Collaboration & Leadership

  • Mentor junior team members and guide investigations within the SOC.

  • Act as a liaison with IT, cloud, and engineering teams to integrate security controls throughout the tech stack.

  • Engage vendors and MSSPs to evaluate tools, share threat intelligence, and improve operational efficiency.

Present to leadership on security posture, incidents, and ongoing improvements.



Required:

  • Bachelor’s degree in Computer Science, Information Security, IT, or related field.

  • 5–8+ years of experience in cybersecurity, including Security Operations, Incident Response, or SOC roles.

  • Hands-on experience with tools such as SIEM, EDR, IDS/IPS, and network monitoring.

  • Skilled in incident handling, investigation, and root cause analysis.

  • Strong scripting/automation skills (Python, PowerShell, Bash).

  • Deep understanding of logs, protocols, network fundamentals, and data analysis.

  • Familiarity with cloud security (AWS, Azure, GCP).

  • Strong analytical, investigative, and communication skills.

  • Experience working in or supporting 24x7 SOC operations.

Preferred:

  • Certifications: CISSP, CISM, GCIH, GCIA, or related.

  • Experience with SOAR platforms and automated playbooks.

  • Exposure to threat intelligence, malware analysis, or reverse engineering.

  • Knowledge of DevSecOps practices and CI/CD integration.

  • Familiarity with regulatory frameworks (HIPAA, ISO, NIST, PCI).

Experience mentoring or leading SOC team initiatives.

We believe in taking care of our team, which is why we offer a comprehensive benefits package that supports your health, wellness, and future:

  • Medical: 4 United Healthcare medical plans (including an HSA option)
  • Dental: 3 dental plans (Aetna and MetLife)
  • Vision: 2 Aetna vision plans
  • Wellness & Mental Health: 5 additional Medical Plus benefits, including telehealth support and an annual Talkspace subscription
  • Ancillary Coverage: 4 ancillary plans and supplemental life insurance
  • Retirement: 401(k) with a 4% match (after a 90-day exclusionary period)
  • PTO & Flexibility: Generous PTO and remote work support
  • Growth: Learning stipends and opportunities for professional development

Average salary estimate

$145000 / YEARLY (est.)
min
max
$120000K
$170000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
HSO Hybrid No location specified
Posted 5 hours ago

HSO is hiring a Modern Workplace Engineer to implement and support Microsoft 365, Intune, and Azure AD solutions while leading migrations, automations, and security for client environments.

Photo of the Rise User

Inspiroz is hiring a part-time School Technology Specialist in Chicago to provide on-site Tier 1/2 support, manage hardware and network installations, and coordinate closely with a remote service desk.

Photo of the Rise User
Scalian Hybrid NC-55, Kinston, NC, USA
Posted 7 hours ago

Experienced Digital Workplace Engineer needed to lead endpoint management, collaboration platform administration, and cybersecurity practices for a multinational engineering consultancy in Kinston, NC.

Photo of the Rise User
bet365 Hybrid One Platte, 1701 Platte Street, Level 3 and 4, Denver, Colorado, United States
Posted 1 hour ago

bet365 is hiring a Network Engineer to support and optimise enterprise network infrastructure for US and South American offices, ensuring high availability for a high-traffic platform.

Photo of the Rise User
Posted 9 hours ago

Experienced EHR Solution Architect needed to lead innovative Epic-based integrations and solution design for a remote, client-focused healthcare technology practice.

Serve as the technical lead for escalated incident response and forensic investigations, driving threat hunting, containment, and post-incident remediation for a mature organization operating in a regulated environment.

Photo of the Rise User
Posted 9 hours ago

Experienced Database Administrator sought to manage and optimize Oracle, MySQL, and MongoDB environments for a fully remote, mission-critical production platform.

Photo of the Rise User

Experienced SAP SD/Application Lead needed to provide hands-on AMS support and client management for a major retail engagement in Greensboro, NC.

Photo of the Rise User
Posted 9 hours ago

KBR’s National Security Solutions team is hiring a Top Secret/SCI-cleared Unified Communications Engineer to engineer, optimize, and manage enterprise UC, VTC, and VoIP systems supporting national security missions.

Photo of the Rise User
NBCUniversal Hybrid 904 Sylvan Ave, Englewood Cliffs, NEW JERSEY
Posted 19 hours ago

Lead complex insider threat and content protection investigations for Versant/NBCUniversal, building and operating advanced DLP, forensics, and detection programs.

Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)

Provide technical support and process leadership for new hire onboarding and large-scale email moderation while improving documentation and operational procedures.

Photo of the Rise User

Lead complex investigations into state-sponsored threats and build scalable detection and analytic workflows to disrupt high-harm platform abuse at LinkedIn.

Nexstar Hybrid KS, Wichita
Posted 7 hours ago

KSNW is hiring an IT Systems/Network Technician to administer IT policies and infrastructure, maintain servers and network systems, and support broadcast production workflows across the station.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
October 14, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!